Technical information

Special Security Product and Service Offers
15-8 Issue 7 June 2001
Loss of an ASG Key
If a user loses their ASG Key, he/she must notify the system administrator
immediately. The administrator, in turn, must do the following:
Modify any logins associated with the lost ASG Key. See the Access
Security Gateway Key Users Guide for information on changing your PIN.
If the login is no longer valid, at the prompt, type remove login xxxx
(xxx = alphanumeric login ID) and press Return to remove the invalid login
from the system.
To keep the same login, change the Secret Key associated with the login to
a new value.
Using the new secret key value, re-key devices that generate responses
and interact with the login.
Interactions of ASG
Customer Access INADS Port
If access to the INADS port is disabled on a system-wide basis,
administering access to the SYSAM-RMT or INADS port, through the
Access Security Gateway feature, does not override the INADS port
restriction. Administration does not prohibit assignment of Access Security
Gateway to the SYSAM-RMT or INADS port. However, in a configuration
where this method of access is blocked, you will be denied access to the
system through the SYSAM-RMT or INADS port even if you attempt to
access the port using a valid Access Security Gateway login ID.
If access to the INADS port has been disabled on a login basis,
administering access to the SYSAM-RMT or INADS port, via the Access
Security Gateway feature, will not override the INADS port restriction.
Login Administration
The standard user interface for DEFINITY ECS login administration has not
been modified by Access Security Gateway. Also, the standard DEFINITY
ECS login user interface is maintained in cases where Access Security
Gateway parameters have not been administered for the login.
Security Violation Notification (SVN)
Access Security Gateway does not support an interface to the SVN
feature. Session rejection events do not appear in the monitor
security-violations login report and referral calls are not spawned in the
event that the number of rejected Access Security Gateway sessions
exceeds the threshold/time interval criteria imposed by the SVN feature.